Compliance Analyst
Core
Ensure compliance processes are consistent and scalable by supporting HITRUST, HIPAA, and SOC 2 readiness and certification activities.
Role type
Compliance Analyst (Information Security & Risk Management)
Builds
Compliance programs and audit readiness for healthtech organization
Domain
Healthcare technology, Information Security, Regulatory Compliance
Deliverable
dashboards & analysis
Required skills
HITRUST frameworks, HIPAA, SOC 2, ISO 27001, GRC tools, cloud security, gap assessment remediation, security controls implementation
Preferred skills
NIST, GDPR, MyCSF tool usage, internal training program development
Responsibilities
Support execution of HITRUST, HIPAA, and SOC 2 readiness and certification; Assist in remediation of identified deficiencies from gap assessments; Implement and monitor security controls aligned with HITRUST CSF; Prepare and present audit findings and compliance reports to leadership; Collaborate with IT and security teams to ensure smooth certification processes.
Seniority
Mid-level (2+ years experience)